Solved

Setting up RADIUS services on a Cisco 1921 and Windows Server 2003

Posted on 2011-03-07
3
1,127 Views
Last Modified: 2012-05-11
I'm new to Cisco routers and to RADIUS services. I have no idea what I'm supposed to do. I've installed the Internet Authentication Service on the server but that's as far as I've got. I have no idea how to configure IAS on the Windows Server and no idea how to configure the Cisco router to use it when it is configured. Can anyone offer any help?
0
Comment
Question by:Russ Suter
  • 2
3 Comments
 
LVL 17

Accepted Solution

by:
MAG03 earned 500 total points
ID: 35066975
For the windows server 2003 configuration have a look at this link:
http://technet.microsoft.com/en-us/library/cc787275(WS.10).aspx

on the cisco device you would need to use AAA, I am assuming you are using telnet for this example:

enable
configure terminal


aaa new-model
aaa authentication default none
(if you have not configured passwords for the console line or any other line for that matter, the cisco device will create a random password and once you log out you will be locked out.)

aaa authentication login RADIUS group radius local-case (This will assign the group NAMED RADIUS to use the radius server and if you lock youself out some how, you can fall back to the locally stored username and password on the cisco device. If you do not want to configure the "fall back" just remove the local-case at the end of the command)

radius-server host x.x.x.x (where x.x.x.x is the ip address of the radius server)

line vty 0 4
login authentication RADIUS
( assigns the AAA authentication group RADIUS to vty line.)
0
 
LVL 20

Author Comment

by:Russ Suter
ID: 35071593
That looks like a good start and something worth playing with. However, if I completely screw up the Cisco router settings is there a quick and easy way to reload the last known good configuration without having to power cycle the router?
0
 
LVL 17

Expert Comment

by:MAG03
ID: 35078588
you could save the current / old configuration to flash:

copy run flash

you should then be asked to enter a file name to save the configuration under...if i remember correctly.

and then if things go bad issue the following command:

configure replace flash:<file name>

This should replace the running configuration. However I have had varied success with this as it seems on routers the configuration is only merged with the existing configuration.  I have had no issues with using this on switches.
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Cisco Prime and Maps 3 36
SSL VPN 3 21
Do you think below two ipv6 routes are the same thing? 4 30
Problem to router 7 17
Problem Description:   Couple of months ago we upgraded the ADSL line at our branch office from Home to Business line. The purpose of transforming the service to have static public IP’s. We were in need for public IP’s to publish our web resour…
In the world of WAN, QoS is a pretty important topic for most, if not all, networks. Some WAN technologies have QoS mechanisms built in, but others, such as some L2 WAN's, don't have QoS control in the provider cloud.
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

864 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

25 Experts available now in Live!

Get 1:1 Help Now